09-27-2021 05:41 AM
Hi All,
We have a cisco FMC 4500, it has multiple management interfaces that we can use. Due to some restraints on mgmt zone, we need to ensure the device management traffic is done through a separate interface (lets say eth1) and the FMC uses another interface (lets say eth2) for going out to the internet (for license updates, software downloads, URL list updates, and other communication with Cisco cloud.
Is it a supported architecture? If yes, any considerations we need to ensure?
Regards
Solved! Go to Solution.
09-27-2021 06:03 AM
Not tried it myself, but you can define additional management interfaces on the FMC.
Refer to the section "Management Interfaces on the FMC" here:-
"The FMC uses the eth0 interface for initial setup, HTTP access for administrators, management of devices, as well as other management functions such as licensing and updates.
You can also configure additional management interfaces on the same network, or on different networks. When the FMC manages large numbers of devices, adding more management interfaces can improve throughput and performance. You can also use these interfaces for all other management functions. You might want to use each management interface for particular functions; for example, you might want to use one interface for HTTP administrator access and another for device management."
09-27-2021 06:07 AM
You must use eth0 for the Internet--based communications (licensing etc. as you noted).
You may use other interfaces (eth1, 2 3) for device management if you configure the appropriate routes on your FMC.
Reference:
09-27-2021 06:03 AM
Not tried it myself, but you can define additional management interfaces on the FMC.
Refer to the section "Management Interfaces on the FMC" here:-
"The FMC uses the eth0 interface for initial setup, HTTP access for administrators, management of devices, as well as other management functions such as licensing and updates.
You can also configure additional management interfaces on the same network, or on different networks. When the FMC manages large numbers of devices, adding more management interfaces can improve throughput and performance. You can also use these interfaces for all other management functions. You might want to use each management interface for particular functions; for example, you might want to use one interface for HTTP administrator access and another for device management."
09-27-2021 06:07 AM
You must use eth0 for the Internet--based communications (licensing etc. as you noted).
You may use other interfaces (eth1, 2 3) for device management if you configure the appropriate routes on your FMC.
Reference:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide